CVE-2024-5988
25.06.2024, 16:15
Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke a local or remote executable and cause a remote code execution condition on the Rockwell AutomationThinManager ThinServer.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | thinmanager | 11.1.0 ≤ 𝑥 < 11.1.8 |
rockwellautomation | thinmanager | 11.2.0 ≤ 𝑥 < 11.2.9 |
rockwellautomation | thinmanager | 12.0.0 ≤ 𝑥 < 12.0.7 |
rockwellautomation | thinmanager | 12.1.0 ≤ 𝑥 < 12.1.8 |
rockwellautomation | thinmanager | 13.0.0 ≤ 𝑥 < 13.0.5 |
rockwellautomation | thinmanager | 13.1.0 ≤ 𝑥 < 13.1.3 |
rockwellautomation | thinmanager | 13.2.0 ≤ 𝑥 < 13.2.2 |
rockwellautomation | thinserver | 11.1.0 ≤ 𝑥 < 11.1.8 |
rockwellautomation | thinserver | 11.2.0 ≤ 𝑥 < 11.2.9 |
rockwellautomation | thinserver | 12.0.0 ≤ 𝑥 < 12.0.7 |
rockwellautomation | thinserver | 12.1.0 ≤ 𝑥 < 12.1.8 |
rockwellautomation | thinserver | 13.0.0 ≤ 𝑥 < 13.0.5 |
rockwellautomation | thinserver | 13.1.0 ≤ 𝑥 < 13.1.3 |
rockwellautomation | thinserver | 13.2.0 ≤ 𝑥 < 13.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration